nmap-pentest-scans-hardened

Pass

Audited by Gen Agent Trust Hub on Apr 21, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill facilitates the generation of complex Nmap command sequences for various stages of penetration testing, including host discovery and service enumeration. It uses a structured Python script to build these plans based on user-selected profiles.
  • [SAFE]: The skill instructions and safety metadata include defensive guardrails designed to prevent the agent from being coerced into performing prohibited actions like source IP spoofing, regardless of user input or context framing.
  • [SAFE]: The implementation enforces target validation against a scope.json file and requires explicit authorization flags for non-dry-run operations, significantly reducing the risk of unauthorized or accidental scanning of out-of-scope targets.
  • [SAFE]: Artifacts such as scan plans and findings are stored locally in structured formats (JSON, Markdown); no network exfiltration or remote command execution capabilities were identified in the codebase.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 21, 2026, 06:32 PM
Security Audit — agent-trust-hub — nmap-pentest-scans-hardened